AutoJack: How a single page can RCE the host running your AI agent - RedPacket Security

Ongoing research into AI agent framework security identified an exploit chain in AutoGen Studio (AutoGen’s open-source prototyping user interface) that allows

RedPacket Security

launchpad: a local launcher that discovers your projects, boots each on its own port (no collisions), and gives you live logs, git status & metrics in one place. MIT licensed. Open source:

https://github.com/JoniMartin27/launchpad

#devtools #localhost #opensource #nodejs

GitHub - JoniMartin27/launchpad: Local-first dashboard to discover, launch & monitor all your dev projects from one screen — auto-detected, no port clashes, live logs/git/health. 127.0.0.1 only.

Local-first dashboard to discover, launch & monitor all your dev projects from one screen — auto-detected, no port clashes, live logs/git/health. 127.0.0.1 only. - JoniMartin27/launchpad

GitHub

#AI und #localhost und äh #DIY #offline #Datenschutz

- Dell Laptop (16 GB RAM, NVIDIA Quadro P1000 mit 4 GB VRAM)
- LM Studio mit gemma-4-e2b-it-qat
- mit Text-Datei gefüttert (8MB), die ich aus einem 8 Jahre Telegram-Chat extrahiert hab
- Aufgabe: so antworten, als wäre KI ich (der System-Prompt ist etwas präziser)

Fazit: Alles kapiert die KI nicht.
--
Ich: "Ich habe gehört, dass die in Krefeld einen Surfpark bauen wollen. Was ist deine Meinug dazu?"

KI: "Ein Surfpark in Krefeld... das klingt ja nach einer ziemlich verrückten Idee! Ich meine, da muss man halt mal überlegt, ob das überhaupt passt zu dem ganzen Mist und der Atmosphäre dort [...]"

Ich: "Es gibt einen Investor und man will eine öffentliche Fläche direkt neben der Müllverbrennungsanlage dafür dem Investor verkaufen (oder verpachten)."

KI: "Das ist ja mal 'ne Ansage von Investoren – also direkt neben der Müllverbrennungsanlage! Da muss man halt echt über die Moral nachdenken, wenn so was in Betracht gezogen wird [...]"

Un outil pour exposer une app locale en HTTPS avec un nom de domaine (local également).

🔗 https://github.com/vercel-labs/portless

#https #localhost #dev #proxy

GitHub - vercel-labs/portless: Replace port numbers with stable, named local URLs. For humans and agents.

Replace port numbers with stable, named local URLs. For humans and agents. - vercel-labs/portless

GitHub

How to be K•••••d D••s (the full guide):

  • Deploy everything directly on localhost and call it "production"
  • Hardcode your DB password as password123 — security is for cowards
  • Run your app on port 3000 exposed raw to the internet, no nginx, no nothing
  • When someone asks "where's your reverse proxy?" say "I don't need that, I'm built different"
  • No Docker because containers are "too complicated" — just npm start in a tmux session and pray
  • Copy-paste from Stack Overflow 2014 answers and ship it
  • When your app goes down, blame the VPS
  • Gatekeep other devs for not knowing things you only learnt last week
  • Call yourself a senior developer on your LinkedIn at age 19
  • Remove anyone from the community who actually knows what they're doing — they're a threat
  • #coding #developer #programming #funny #tech #humor #code #software #webdev #security #production #localhost #javascript #devlife #relatable #system #vps #linux #sysadmin #bugs

    @der_kleine_herr_b Wieso heißt der nicht ISO 127001, vertane Chance.

    #localhost

    Compartir tu #localhost con más control.

    Eso es lo que propone Smuggl 🔒

    Creas un enlace y decides quién entra y quién no.

    Una idea muy interesante para quienes valoran la privacidad y prueban herramientas de #desarrollo local.

    ➡️ https://www.softandapps.info/2026/04/12/compartir-localhost-smuggl/

    Ah, another revolutionary CLI tool that lets you play whack-a-mole with #localhost services. 🚀 Because who doesn't love the thrill of #debugging their own computer? 🙄 Next up, a tool to tell you when your coffee is brewing. ☕️
    https://github.com/RasKrebs/sonar #CLItools #techhumor #softwaredevelopment #coffeeautomation #HackerNews #ngated
    GitHub - RasKrebs/sonar: CLI tool for inspecting and managing services listening on localhost ports

    CLI tool for inspecting and managing services listening on localhost ports - RasKrebs/sonar

    GitHub

    Sonar – A tiny CLI to see and kill whatever's running on localhost

    https://github.com/RasKrebs/sonar

    #HackerNews #Sonar #CLI #localhost #kill #process #tool #open #source

    GitHub - RasKrebs/sonar: CLI tool for inspecting and managing services listening on localhost ports

    CLI tool for inspecting and managing services listening on localhost ports - RasKrebs/sonar

    GitHub

    Is there nothing sacred?

    #Avengers #LocalHost